Security Advisory

CVE-2023-35851

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-09-18 02:33:59
Last updated 2024-09-25 15:44:38
Assigner twcert
State PUBLISHED

Description

SUNNET WMPro portals FAQ function has insufficient validation for user input. An unauthenticated remote attacker can inject arbitrary SQL commands to obtain sensitive information via a database.